Information System Security Engineer (ISSE)
Location: US-MD-Annapolis Junction
Responsibilities
- Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies.
- Perform security engineering activities across the system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support.
- Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities.
- Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications.
- Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise.
- Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks.
- Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines.
- Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security.
- Engineer endpoint protection and hardening solutions utilizing Trellix ePO (On-prem), host-based firewalls, and application whitelisting technologies.
- Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities.
- Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports.
- Experience administering, configuring, and troubleshooting core CyberArk modules (EPV, PVWA, CPM, PSM).
- Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision.
- Assist with integrated, dynamic cyber defense, coordinate and maintain security toolsets to support continuous monitoring and ongoing authorization programs.
- Establish a framework by which cyber risk can be measured and quantified in the marketplace.
- Determine security requirements by evaluating business strategies, researching information security standards, conducting system security and vulnerability analyses, and studying architecture/platforms.
- Implement security systems by specifying intrusion detection methodologies and equipment; directing installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation; and developing test scripts.
- Maintain security by monitoring compliance to standards, policies, and procedures; conducting incident response analyses; and developing training programs.
- Design, develop, implement, and integrate DoD IA architectures, systems, or system components for use within computing, network, and enclave environments; ensure secure design of development and operational systems.
Qualifications
- Minimum of 8 years with BS/BA; minimum of 6 years with MS/MA; minimum of 3 years with PhD with 4 years added in lieu of a degree.
- Active Top Secret with SCI Eligibility.
- DoD 8570.1-M/8140 IAT Level III certification (SecurityX CASP, GCIH, CISA, CISSP) compliant.
- Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps.
- Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs).
- Hands-on experience with Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Windows Server, Red Hat Enterprise Linux, and Ubuntu Linux.
- Experience scripting and automation with PowerShell, Python, Bash, and Ansible.
- Proven experience leading projects and mentoring junior ISSEs.
- Ability to present technical briefings to leadership.
Overview
Peraton is a national security company providing mission-focused integrator and enterprise IT services to protect and support government and allied nations. We operate across multiple domains and partner with essential government agencies.
Target Salary Range
$146,000 – $234,000. Salary is determined by factors including scope, experience, education, location, and contract considerations. Some positions may include overtime, shift differential, and discretionary bonuses where applicable.
EEO
Peraton is an Equal Opportunity Employer, including disability and protected veterans, or other characteristics protected by law.